Privacy
The short version: we keep what we need to run your checkups, your connected sportsbook history, your posts, and your billing. We send your slip text, your questions, and relevant parts of your betting profile to the AI and search providers named below, with your permission, which you can withdraw. We also keep our own record of every analysis we produce, and we use it to make the Doctor better. We don’t sell any of it. Last updated July 2026.
BetSlip Doctor is operated by OpSpot (founder Colton Harris). Questions about this policy: support@betslipdoctor.ai or colton@opspot.ai.
What we collect
Slips, questions, and reports
- The betslip text you paste or build, the questions you ask the Doctor, and the reports we produce.
- A photo of a betslip, if you use the camera or photo upload, and the text a vision model reads out of it. The photo is sent to our AI provider to be read; we do not keep a photo library.
- Your bettor profile, if you set one: betting style, risk tolerance, your unit size in dollars, and the sports and sportsbooks you follow. It personalizes how a verdict is framed.
Connected sportsbook history
Connecting a sportsbook is optional and the app works without it. If you connect one, our provider SharpSports verifies the account with the sportsbook and sends us your open and settled wagers: the events and selections, the odds, the amount at risk, the amount to win, the payout, the net result, and whether each bet won, lost, or pushed. We store that history so the app can grade your real record.
Your sportsbook username and password go to the sportsbook through SharpSports’ own secure portal, they never reach BetSlip Doctor. The connection is read-only: neither we nor SharpSports can place a bet, deposit, or move money in your sportsbook account. You can disconnect any book at any time in the app.
Your location, when you connect a book
Sportsbooks are licensed state by state, so opening the right regional login requires knowing your state. When you start a sportsbook connection the app asks iOS for your location once, turns it into a U.S. state on your device, and sends only that two-letter state code to us and on to SharpSports. Your coordinates never leave your phone, we do not store a location history, and we do not use location for anything else. You can decline; you just won’t be able to link a sportsbook.
The community feed
- The handle you choose, the slips you post, your captions, your comments and replies, who you follow, and what you like or tail. Posts, comments, handles, and follow counts are public to everyone else using the app. Treat the feed as public, don’t put anything in a caption you wouldn’t say out loud.
- Reports and blocks you submit. A report records who reported what and the reason so we can moderate; a block records that you no longer want to see an account.
Account, billing, and device
- You may enter an email address to create or sign in to the same BSD account on more than one device. We send it through our backend to Supabase Auth to deliver the secure sign-in link, and the signed BSD session keeps the address so your account can be identified and exported.
- Before you subscribe, the app creates a random device identifier for preview access. Once you subscribe, Apple handles billing entirely, we receive your subscription status and an Apple transaction identifier, never your card details and never your Apple Account credentials.
- Stripe applies only to legacy web subscriptions. There too we never see your card number; your email address appears on Stripe receipts and inside the signed session cookie that keeps you logged in.
- Your IP address, briefly, to enforce rate limits and stop abuse.
- A referral code, if you were invited by another user or invite someone yourself.
- An Expo push token if this device registers for remote alerts, so we can deliver scan and settlement updates. iOS also supports local reminders that never leave the device.
Analytics and crash reports
Our servers may record a small, fixed set of product events (a scan started or finished, a plan changed, a usage limit hit) in PostHog and server errors in Sentry when those services are configured, so we can tell whether the app is working. The identity attached is a one-way SHA-256 hash of your account id, never the raw id, never an email, never your slip or post content. The current native iOS build does not include a crash-reporting SDK. Vercel records basic website and server logs. There are no advertising trackers and no data brokers anywhere in the product.
Third-party AI, and your permission
Running a checkup, a slip photo read, or a Doctor chat means the slip text, the questions you ask, and relevant parts of your betting profile and approved sportsbook history are sent to third-party AI and web-search providers. That is how the analysis gets done, there is no version of these features that happens only on your phone.
We ask for your permission in the app before the first time this happens, and you can withdraw it at any time in Settings → Third-party AI sharing. With it off, scans, slip photo reads, and Doctor chat stop until you turn it back on; the rest of the app still works.
The outside companies process your content to return the result. Their logging, retention, and model-improvement rules are governed by their own API or service terms and can differ by provider and route; we do not promise zero retention or that every outside provider is universally barred from model improvement. We avoid optional prompt logging where we control it, name the providers below, and never sell your content. Don’t paste personal information into a slip, nothing you wouldn’t type into a search box.
We keep operational analysis records, and train only with separate permission
Separately from the AI companies, we keep operational records needed to deliver and check an analysis: the slip, prompts and answers, model, cost and timing, grades, sources, odds, and eventual result. Records that are not approved for model improvement stay operational and expire under our retention schedule; they are not exported into a training dataset.
Model Improvement is a separate, default-off permission. If you turn it on, only opted-in, redacted, quality-labelled records can enter one of our own training datasets. You can turn it off at any time; doing so blocks future training exports and revokes affected prior datasets. We do not sell this data or give it to another company to train on.
If you delete your account, raw analysis records, including slips, prompts, model answers and linked grades, are deleted. We may retain only non-linkable aggregate outcome and model-quality statistics that contain no account, run, bet, prompt, response, image, or event identifier.
One thing we deliberately do not keep: betslip photos. A photo you upload is sent to be read and then dropped. The record keeps only the text read out of it.
Who processes your data
These are the third parties that can receive data about you, and what each one is for:
- Apple, App Store billing, subscription status, and notification delivery.
- SharpSports, sportsbook account linking, bet-history import, and building a prefilled slip when you choose to open one at your book.
- OpenRouter, the gateway that carries our AI requests. It routes each request to a model vendor, currently Anthropic, OpenAI, Google, DeepSeek, or xAI depending on the job, and that vendor processes the content of the request.
- xAI, a live-context research call we make directly for some Doctor answers, which receives the slip text and your questions.
- Tavily and Firecrawl, the web search and page retrieval that grounds a report in real sources.
- Vercel, hosting, and anonymized page metrics for the website.
- Supabase / Postgres, the database everything above is stored in.
- Upstash, rate limiting; QStash, the scan job queue.
- Expo, app build and update delivery, plus remote notifications for registered devices.
- Stripe, legacy web payments only.
- PostHog (product analytics) and Sentry (error reports), hashed account id only, as described above.
Each is used to run the service you asked for. Provider logging, retention, and model-improvement terms differ; this policy does not replace or overstate those outside terms.
Separately, we read from odds and schedule sources, The Odds API, TheRundown, and ESPN’s public scoreboard, to show lines and games. We send them no information about you.
How long we keep it
- Working research material from Deep Scans, fetched pages, intermediate model notes, progress events, is pruned on a rolling schedule, normally around 30 days after a scan finishes.
- Finished reports are kept so your scan history keeps working.
- Imported sportsbook history is kept while your account exists, so your record and grades stay accurate. Disconnecting a book stops new imports; deleting your account removes the history.
- Posts and comments stay up until they are taken down by you or removed by us under our community rules.
- Aggregate cost and usage telemetry is kept somewhat longer (around 120 days) for accounting.
- Billing and credit-ledger records are retained as long as accounting requires.
- Raw operational analysis records normally expire after 45 days unless current Model Improvement permission makes them eligible for a registered training dataset. Withdrawal revokes affected datasets; account deletion removes raw analysis and keeps only the non-linkable aggregate statistics described above.
Your choices
- Third-party AI sharing: withdraw your permission any time in Settings → Third-party AI sharing. Scans, slip photo reads, and Doctor chat pause until you turn it back on.
- Sportsbooks: connect none, one, or several, it is entirely optional. Disconnect any book in the app and we stop importing new wagers immediately.
- Location: decline the permission, or turn it off in iOS Settings. Everything except sportsbook linking still works.
- The feed: posting is optional. You can take down your own posts, block any account, and report anything that breaks the rules. To have a comment removed, report it or email us.
- Notifications: turn them off in iOS Settings to stop both local reminders and any remote alerts sent to this device.
- Export: use Export account activity in the app’s Account screen, or from the web account page, to download the account activity and settings included in our export. Security credentials, provider tokens, and internal abuse logs are excluded.
- Cancel anytime. App Store subscriptions are canceled in iOS Settings → Subscriptions; legacy web subscriptions from your account. Access continues to the end of the paid period.
- Deletion: use in-app Delete Account (or write support@betslipdoctor.ai). See exactly what that removes below.
What deleting your account removes
Deletion runs in one transaction and is honest about the few things it cannot erase:
- Deleted outright: your scans and reports, your imported sportsbook history and linked-account records, your Doctor profile, your credit balance, your push tokens, your referral records, and your likes, follows, tails, and blocks.
- Removed and anonymized: your posts and comments come down and are detached from you. Moderation reports are kept without your identity so abuse accounting still works.
- Kept, anonymized: financial ledger rows, as accounting rules require, and non-linkable aggregate outcome/model-quality statistics. Raw prompts, model answers, slips, linked grades, and identifiable analysis records are deleted. Retained rows cannot be traced back to an account or linked across those separate audit purposes.
- Deliberately not released: your handle stays retired rather than being freed for reuse, so nobody can take a deleted user’s name and impersonate them.
- Deleting your account does not cancel App Store billing. Cancel in iOS Settings → Subscriptions to stop renewals.
No selling, ever
We do not sell or rent personal data, not your slips, not your betting history, not your posts, not your email, not your usage. No data brokers, no ad networks.
Age & jurisdiction
BetSlip Doctor is offered in the United States only and is for adults of legal sports-betting age in their jurisdiction (21+ in most U.S. states). It is entertainment and educational decision support, it never places a wager. It is not for children, and we do not knowingly collect data from anyone under 18. See our responsible-use terms for the full policy.
Changes to this policy
If we start collecting something new or add a provider that receives your data, we update this page and change the date at the top before that change goes live. Questions, or a request about your data, go to support@betslipdoctor.ai.